Important Update: Archer Community Scheduled Maintenance on November 23–24 - New Community Launching Soon! Learn More..
2024-03-20 11:09 AM - edited 2024-06-25 04:36 PM
Archer announces the general availability of Archer Insight with enterprise-wide risk quantification capabilities which improve the prioritization of risks and controls. Archer's implementation offers real enterprise risk quantification. Other quantification tools are decoupled from GRC and existing risk inventories, or have a narrow focus on cyber only.
Available to SaaS (software as a service), and on-premises customers on Archer Platform Version 2024.06 and later.
Archer Insight has reinvented the process for facilitating risk managers in moving from qualitative to quantitative risk management programs. The Risks application, formerly known as Risk Register, contains process updates for creating, managing, and aggregating financial expected loss for quantitative risks. Organizations can analyze meaningful, aggregated risk exposure across existing hierarchy structures such as assets, regions, divisions, functions, etc. Archer Insight provides an intuitive and robust user-interface offering risk managers 3 options for assessing risks:
The concept of a Lifecycle Status has been added to control procedures to facilitate workflows around the lifecycle of a control. And by leveraging the combination of the Lifecycle Status and the Compliance status, we determine an actual control value. Users assess the aggregate control values and the control costs to understand each control’s full return on investment (ROI) in managing risks.
The Insight feature also provides visualization of full uncertainty around economic losses leveraging the common downside metrics of VaR and CVaR. Additionally, it provides the ability to aggregate the downside uncertainties to any level of any risk quantification hierarchy. The Insight UI uses an analytical convolution methodology for robust aggregation calculations, rendering the feature much faster than a Monte Carlo analysis.
The value these capabilities provide for Risk Managers includes:
The Risk Statements application, formerly known as the Risk Register Library, not only continues to serve as a template for risk generation, but now also functions as an additional aggregation level for both qualitative and quantitative risks. Risks are now truly an instantiation of the Risk Statement.
A new Risk Generator application has been also added which allows users to quickly generate multiple Risks records, based on the combination of selected Risk Statements and target applications. A risk is generated per unique combination of statement and target upon execution.
Please contact your account representative for details on deploying and installing the Archer Insight use case.
One of the following use cases is a pre-req to Archer Insight:
Archer has a defined End of Primary Support policy associated with all major versions. For additional details, refer to the Product Version Life Cycle.